Sr. Staff Security Engineer, Platform Security in London

Sr. Staff Security Engineer, Platform Security in London

London Full-Time 81000 - 99000 £ / year (est.) Home office (partial)
U

At a Glance

  • Tasks: Conduct in-depth security reviews of our cutting-edge IaaS platform and ensure robust protection.
  • Company: Join Nscale, a pioneering GPU cloud company driving AI innovation.
  • Benefits: Enjoy competitive pay, flexible work options, and a supportive team culture.
  • Other info: Be part of a dynamic team with opportunities for growth and influence.
  • Why this job: Shape the future of AI infrastructure while making a real impact on security.
  • Qualifications: 12+ years in security engineering with hands-on experience in cloud services.

The predicted salary is between 81000 - 99000 £ per year.

Nscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start-ups and large enterprise customers. Nscale enables AI-focused companies to achieve superior results by reducing the complexity of AI development. Our GPU cloud bolsters technical capabilities and directly supports strategic business outcomes, including cost management, rapid innovation, and environmental responsibility. We thrive on a culture of relentless innovation, ownership, and accountability, where every team member takes pride in their work and drives it with excellence and urgency. As an Nscaler, you’ll build trust through openness and transparency, where everyone is inspired to do their best work. If you join our team, you’ll be contributing to building the technology that powers the future.

We are hiring a Senior Staff Security Engineer as a founding member of Nscale's Platform Security program. Your job is to go deep on how our IaaS platform is actually built — not how the diagrams say it is built — and to perform the security reviews that tell leadership and customers where it holds, where it doesn't, and what it will take to close the gap. The scope is the infrastructure layer: the GPU compute platform, storage, virtual networking, and Kubernetes. Across each of these you'll map the architecture, define what secure looks like, review designs and implementations against that standard, test isolation boundaries, and produce assurance evidence. The estate spans bare-metal GPU infrastructure, Slurm/HPC scheduling, and Kubernetes. This is a hands-on assurance role. You will spend most of your time inside the platform — reading configuration, tracing data and control paths, breaking isolation assumptions, and working alongside platform, SRE, and infrastructure engineering to land fixes. You will have done this before, at a cloud services provider, where the platform was the product.

What you'll be doing:

  • Platform security reviews: Perform deep-dive security reviews of Nscale's IaaS services, one service at a time, producing a documented architecture, threat model, findings, and remediation plan for each. Define the security requirements baseline for each service and review designs and implementations against it. Prioritise findings by exploitability in our environment. Advise leadership on what is known, verified, accepted, and required to close platform security gaps.
  • GPU compute platform: Review the bare-metal and virtualised GPU compute stack: host provisioning, hypervisor and GPU passthrough or partitioning, firmware and BMC management, and tenant reprovisioning. Verify that a tenant cannot reach, persist on, or learn from hardware after their lease ends. Assess the out-of-band management plane and its separation from tenant-reachable networks.
  • Storage: Review block, object, and file storage services for tenant data separation, encryption at rest and in transit, key management, and access-path control. Verify snapshot, backup, and volume lifecycle handling — including secure deletion and reuse — across tenants.
  • Virtual networking: Review the virtual network layer: overlay and underlay design, tenant segmentation, east-west controls, and the boundary between tenant networks and the management plane. Test that segmentation holds under realistic tenant behaviour, not only under the design assumptions.
  • Kubernetes and Slurm: Review multi-tenant Kubernetes: admission control, workload identity, runtime and node hardening, network policy, and container escape paths. Review Slurm/HPC scheduling for isolation between jobs and tenants, privilege boundaries, and node reuse. Drive testing of isolation boundaries and gather evidence that demonstrates customer workloads are separated.
  • Engineering partnership: Partner with platform, SRE, and infrastructure engineering to land fixes and secure-by-default patterns. Influence teams you don't manage without becoming their ticket queue. Track control coverage and remediation trends so "secure" is a number, not a word.
  • KPIs: Assurance reviews shipped, Tenant isolation evidence produced, Estate-wide enforcement measured and trended.

About You:

  • 12+ years in security engineering, platform/infrastructure engineering, or security architecture, with a deep platform security focus.
  • Experience at a cloud services provider — you have secured or assessed IaaS services where the platform was the product and tenants were untrusted by default.
  • Deep understanding of multi-tenant isolation across bare metal, hypervisors, container boundaries, and network segmentation — including what it takes to prove separation rather than assert it.
  • Hands-on knowledge of GPU or accelerator infrastructure: passthrough and partitioning, firmware and BMC management, and the failure modes of hardware reuse between tenants.
  • Strong grasp of storage security in a multi-tenant setting: encryption and key management, access-path control, and data lifecycle across snapshots, backups, and reuse.
  • Working knowledge of virtual networking: overlay/underlay design, segmentation, and management-plane separation.
  • Deep knowledge of Kubernetes and container internals, including runtimes, namespaces and cgroups, escape paths, admission control, and workload identity.
  • Experience securing or assessing Slurm/HPC environments is a strong plus.
  • Proven ability to influence engineering organisations you don't manage, set standards, win arguments through evidence, and drive remediation without formal authority.
  • Comfortable operating with ambiguity and a founding-team mandate, creating the evidence base as you build the program.

What we can offer you:

At Nscale, you'll find a collaborative, supportive, and innovative environment where your contributions spark real impact. We're building something extraordinary, and we want you at the core. Highly competitive US compensation package (base + bonus + equity), with performance reviews every 12 months. Join one of the fastest-growing AI infrastructure companies — your chance to directly shape how global AI capacity is planned and deployed. Expect a dynamic progression plan tailored to your ambitions. Grow by leading critical cross-functional initiatives and shaping capital strategy — always with our full support.

Human-First Flexibility:

We treat you as humans first. Our flexible workplace trusts Nscalers to deliver, giving you the autonomy to shape your day around life's moments.

Equal Opportunities Statement:

We strongly encourage applications from people of colour, the LGBTQ+ community, people with disabilities, neurodivergent people, parents, carers, and people from lower socio-economic backgrounds. If there's anything we can do to accommodate your specific situation, please let us know.

The responsibilities outlined in this job description are not exhaustive and are intended to provide a general overview of the position. The employee may be required to perform additional duties, tasks, and responsibilities as assigned by management, consistent with the skills and qualifications required for the role.

Salary Range $210,000 — $250,000 USD

Sr. Staff Security Engineer, Platform Security in London employer: UNCOVER

Join a prestigious international law firm in London, where you will be part of a high-performing legal team dedicated to excellence and innovation. The firm offers a collaborative work culture that fosters professional growth, providing ample opportunities for career advancement and skill development. With a focus on supplier agreements and commercial technology contracts, this role not only promises meaningful work but also the chance to make a significant impact within a globally recognised organisation.

U

Contact Details:

UNCOVER Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Sr. Staff Security Engineer, Platform Security in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including UNCOVER, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through UNCOVER

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at UNCOVER. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Sr. Staff Security Engineer, Platform Security in London

Security Engineering
Platform Security
IaaS Services Assessment
Multi-Tenant Isolation
GPU Infrastructure Management
Storage Security
Virtual Networking

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at UNCOVER insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to UNCOVER that you’re committed to staying ahead in the game.

How to prepare for a job interview at UNCOVER

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at UNCOVER to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at UNCOVER.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.